
Inline adoc files when they are included exactly once. Also fix language tags because this inlining gives us better information on what language the code is written in.
54 lines
958 B
Plaintext
54 lines
958 B
Plaintext
include::../description.adoc[]
|
|
|
|
include::../ask-yourself.adoc[]
|
|
|
|
include::../recommended.adoc[]
|
|
|
|
== Sensitive Code Example
|
|
|
|
[source,xml]
|
|
----
|
|
<application
|
|
android:usesCleartextTraffic="true"> <!-- Sensitive -->
|
|
</application>
|
|
----
|
|
|
|
For versions older than Android 9 (API level 28) ``++android:usesCleartextTraffic++``
|
|
is implicitely set to ``++true++``.
|
|
|
|
[source,xml]
|
|
----
|
|
<application> <!-- Sensitive -->
|
|
</application>
|
|
----
|
|
|
|
== Compliant Solution
|
|
|
|
[source,xml]
|
|
----
|
|
<application
|
|
android:usesCleartextTraffic="false">
|
|
</application>
|
|
----
|
|
|
|
include::../see.adoc[]
|
|
ifdef::env-github,rspecator-view[]
|
|
|
|
'''
|
|
== Implementation Specification
|
|
(visible only on this page)
|
|
|
|
=== Message
|
|
|
|
Make sure allowing clear-text traffic is safe here.
|
|
|
|
usesCleartextTraffic is implicitly enabled for older Android versions. Make sure allowing clear-text traffic is safe here.
|
|
|
|
|
|
=== Highlighting
|
|
|
|
Highlight the opening <application> tag
|
|
|
|
|
|
endif::env-github,rspecator-view[]
|